Sploitus

Exploit for Windows Plug and Play buffer overflow

saint · 2006-03-03

Exploit Code

MARKDOWN33 lines
## https://sploitus.com/exploit?id=SAINT:C2B6B45C1B1FC41E6ACB6FBC791991D0
Added: 03/03/2006  
CVE: [CVE-2005-1983](<https://vulners.com/cve/CVE-2005-1983>)  
BID: [14513](<http://www.securityfocus.com/bid/14513>)  
OSVDB: [18605](<http://www.osvdb.org/18605>)  


### Background

The Windows [Plug and Play](<http://www.microsoft.com/technet/prodtechnol/windows2000pro/evaluate/featfunc/plugplay.mspx>) service allows Windows operating systems to automatically detect and configure a new hardware device, such as a mouse. 

### Problem

A buffer overflow in the Plug and Play service could allow command execution with administrative privileges. 

### Resolution

Apply the patch referenced in [Microsoft Security Bulletin 05-047](<http://www.microsoft.com/technet/security/bulletin/MS05-047.mspx>). 

### References

<http://www.microsoft.com/technet/security/bulletin/MS05-039.mspx>  


### Limitations

Remote, uncredentialed command execution is not possible on Windows XP or Windows Server 2003. 

Successful exploitation may cause the target to reboot after disconnection. 

### Platforms

Windows